Buffer overflow in Internet Information Server (IIS) 4.0, 5.0, and 5.1 allows remote attackers to spoof the safety check for HTTP headers and cause a denial of service or execute arbitrary code via HTTP header field values.
| Software | From | Fixed in |
|---|---|---|
| microsoft / internet_information_services | 5.0 | 5.0.x |
| microsoft / internet_information_server | 4.0 | 4.0.x |